Skip to content
View harelsegev's full-sized avatar

Block or report harelsegev

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Parser for Windows PowerShell script block logs

Python 15 4 Updated Nov 4, 2025

Libewf is a library to access the Expert Witness Compression Format (EWF)

C 306 84 Updated Dec 20, 2025

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digi…

C 3,053 687 Updated Apr 27, 2026

This project aims to enhance the working environment on Windows

C 32,333 1,311 Updated Apr 8, 2026

Library and tools to access the Windows New Technology File System (NTFS)

C 228 57 Updated Feb 8, 2026

Extract and Visualize Data from URLs using Unfurl

Python 738 63 Updated Apr 19, 2026

Browser forensics tool for Google Chrome (and other Chromium-based browsers)

Python 1,416 179 Updated Apr 17, 2026

Volatility 3.0 development

Python 4,087 648 Updated Apr 23, 2026

Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.

C# 44 5 Updated Oct 25, 2024

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…

1,104 80 Updated Feb 25, 2026

Construct: Declarative data structures for python that allow symmetric parsing and building

Python 1,002 167 Updated Apr 22, 2025

MemProcFS

C 4,106 516 Updated Apr 19, 2026

A fast, clean, responsive Hugo theme.

HTML 13,419 3,368 Updated Apr 26, 2026

The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportunity to write a chapter of a book to get their name out ther…

Ruby 220 23 Updated Dec 30, 2025

A demo of some living-off-the-land techniques

5 Updated Aug 5, 2022

Compile type annotated Python to fast C extensions

1,986 48 Updated Apr 17, 2023

A place for all my DFIR ramblings

HTML 3 Updated Oct 29, 2022

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

Python 3,980 526 Updated Apr 23, 2026

⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡

Rust 21,358 1,433 Updated Apr 27, 2026

A small util to brute-force prefetch hashes

Rust 77 12 Updated Jun 24, 2022

egui: an easy-to-use immediate mode GUI in Rust that runs on both web and native

Rust 28,885 2,024 Updated Apr 27, 2026

OneDriveExplorer is a command line and GUI based application for reconstructing the folder structure of OneDrive from the <UserCid>.dat and <UserCid>.dat.previous file.

Python 231 25 Updated Jan 6, 2026

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifa…

HTML 650 50 Updated Nov 7, 2025

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

C++ 611 115 Updated Jul 23, 2023

Library to handle the files in zff format (file format to store and handle forensic acquisitions).

Rust 21 1 Updated Apr 9, 2026

Rapidly Search and Hunt through Windows Forensic Artefacts

Rust 3,528 297 Updated Apr 27, 2026

Super timeline all the things

Python 2,056 411 Updated Apr 27, 2026

Yet another registry parser

Python 137 15 Updated Apr 15, 2022

Carve file metadata from NTFS index ($I30) attributes

Python 72 5 Updated Feb 3, 2024

An NTFS/FAT parser for digital forensics & incident response

Python 230 33 Updated Oct 31, 2025